Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 2

Количество 2

nvd логотип

CVE-2026-4208

5 месяцев назад

The extension fails to properly reset the generated MFA code after successful authentication. This leads to a possible MFA bypass for future login attempts by providing an empty string as MFA code to the extensions MFA provider.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-29r8-gvx4-r9w3

5 месяцев назад

Authentication Bypass in extension "E-Mail MFA Provider" (mfa_email)

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-4208

The extension fails to properly reset the generated MFA code after successful authentication. This leads to a possible MFA bypass for future login attempts by providing an empty string as MFA code to the extensions MFA provider.

CVSS3: 8.8
0%
Низкий
5 месяцев назад
github логотип
GHSA-29r8-gvx4-r9w3

Authentication Bypass in extension "E-Mail MFA Provider" (mfa_email)

CVSS3: 8.8
0%
Низкий
5 месяцев назад

Уязвимостей на страницу